TP-Link OMADA OpenRoaming

TP-Link OMADA OpenRoaming


Notes
This guide requires Passpoint enabled firmware on both the controller and Access Point.
The lastest stable firmware for the controller is 1.30.7 Build 20250704 Rel.78617 (Stable), and you need to have the lastes dev / testing firmware installed on the AP for the 802.11u extensions to be broadcasted on the configured SSID. We have tested it on EAP670(EU) v2.0 running version 1.3.50.

Prerequisites

You will need Radius IP address, port numbers for auth and accounting and Radius secret - you can get them from the Network section in our Console.

Configuration steps

Log in to your controller management GUI.
Select the site in which you want to configure Passpoint SSID.
Navigate to Settings -> Network Profile, click on RADIUS Profile



Click +Create New RADIUS Profile.

Fill all the necessary fields using your details from the Console



Click Save

Navigate to Settings -> Wired & Wireless Networks, click on WLAN


Click +Create New Wireless Network

Select WPA Enterprise in Security and select the RADIUS Profile that you have created in the previous step. Enable Guest Network option to enable Client Isolation.



Click + Hotspot 2.0 to open the branch, click Enable and configure Roaming Consortioum OiPLMN ID, click Enable the  Internet option and select correct Network Availablility according to your environment



In the NAI Realm list click Add New Realm, use ironwifi.net as the Realm name, select EAP-TTLS as the EAP Method and select None-EAP Inner Authentication Type with MSCHAPv2 as Authentication param, add another EAP Method - EAP-SIM with Credential Type SIM and USIM.



Click Confirm to add the details and click Save to create and publish the SSID.


    • Related Articles

    • TP-Link OMADA Passpoint

      This guide requires Passpoint enabled firmware on both the controller and Access Point. The lastest stable firmware for the controller is 1.30.7 Build 20250704 Rel.78617 (Stable), and you need to have the lastes dev / testing firmware installed on ...
    • TP Link Omada (version 4)

      This page explains the configuration of TP Link access points with Omada version 4 controller for external Captive Portal and RADIUS authentication. IronWiFi Console Configuration Log into the IronWiFi console or register for free Create a new ...
    • Juniper Mist OpenRoaming with RadSec

      Prerequisites Access to the Mist Dashboard as a user with administrative privileges. Access to the IronWiFi Management Console - Sign in or Open Account RadSec enabled on your Network as detailed here (you will need to download the certificate ...
    • Aruba Central OpenRoaming configuration with RadSec

      Prerequisites Access to the Aruba Central dashboard as a user with administrative privileges. Access to the IronWiFi Management Console - Sign in or Open Account RadSec enabled on your Network as detailed here (you will need to download the ...
    • TP-Link EAP

      This page explains the configuration of TP-Link wireless access points in standalone mode or managed by the EAP controller. We will configure the device to use an external Captive Portal and RADIUS server authentication. IronWiFi Console ...